This security bulletin contains one medium risk vulnerability.
Exploit availability: NoDescription
The vulnerability allows a remote non-authenticated attacker to manipulate data.
The vulnerability exists due to improper input validation within the Mobile Application Framework component in Instantis EnterpriseTrack. A remote non-authenticated attacker can send specially crafted HTTP request and manipulate data within the application.Mitigation
Install updates from vendor's website.Vulnerable software versions
Instantis EnterpriseTrack: 17.1 - 17.3
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?